larksuite/cli lark-calendar
Checked the catalogued skill at lark-calendar.
A set by no findings on this axis
A set by no findings on this axis
A set by no findings on this axis
No issues flagged by the static checks in the scanned files.
11 suppressed by AI triage
References to '../' files are documentation links in the manifest, not used for runtime file access.
The '../' path appears only in a documentation reference, not as executable code.
This is a reference link in the markdown, not a path traversal that affects runtime.
The '../' link is a documentation reference, not a dangerous path.
Only a doc link; no file access occurs at runtime.
The path is part of a documentation reference, not used for file operations.
The referenced path is a documentation link, posing no path traversal threat.
The token shown is an example placeholder, not an actual secret.
Relative path used in documentation, not a path traversal attack.
Relative path in documentation, not a path traversal attack.
The file contains documentation of a CLI command that would perform an outbound network call, but the command itself is not executed in this context and is harmless documentation.